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DETAILED ACTION 

This is in response to amendment filed 01/08/07. 

Response to Arguments 

Applicant's arguments have been considered but are moot in view of the new 
ground(s) of rejection. 

Claim Rejections - 35 USC § 102 

The following is a quotation of the appropriate paragraphs of 35 U.S.C. 102 that form 
the basis for the rejections under this section made in this Office action: 

A person shall be entitled to a patent unless - 

(b) the invention was patented or described in a printed publication in this or a foreign country or in public 
use or on sale in this country, more than one year prior to the date of application for patent in the United 
States. 

Claims 1, 2, 3, 6-9, 11, 15-17, 19, 21, 24-26 are rejected under 35 U.S.C. 102(b) as being 
anticipated by anticipated by Kobayashi et al. (US 6275825) (hereafter Kobayashi). 

Regarding claim 1, Kobayashi discloses: A computer-implemented method of managing 
data that can be made accessible to a user, comprising: obtaining a core data set (Login ID) 
representing a constituent (col. 5, lines 6-23, Kobayashi); 

obtaining a role-specific data set that representing a role assumed by the constituent 
(employee information, col. 5, lines 42-55, Kobayashi); 
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storing the core data set and the role-specific data sets so as to distinguish the core data 
set from the role-specific data set ( storing employee information in DB, col. 6, lines 22-41 and 
col. 5, lines 24-40, Kobayashi); 

obtaining a second role-specific data set representing a second role assumed by the 
constituent (col. 6, lines 35-57, Kobayashi); 

storing the second role-specific data set so as to be separate from said role-specific data 
set and the core data set (FMF, col. 6, lines 58 to col. 7, lines 4, Kobayashi). 

Regarding claim 2, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi discloses: wherein storing comprises storing the core 
data set and the role-specific data set separate from one another (Login ID stored in UMF, col. 
5, lines 24-30, Kobayashi). 

Regarding claim 3, all the limitations of this claim have been noted in the rejection of 
claim 2 above. In addition, Kobayashi discloses: wherein obtaining a role-specific data set 
further comprises obtaining a role-specific data set that only contains data that is different than 
the data stored in the core data set (employee information file store in DB, Login ED stored in 
UMF, col. 5, lines 34-30, Kobayashi). 
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Regarding claim 6, all the limitations of this claim have been noted in the rejection of 
claim 5 above. In addition, Kobayashi discloses: wherein obtaining a second role-specific data 
set comprises obtaining a second role-specific data set that only contains data that is different 
than the data stored in the role-specific and core data sets (col. 9, lines 35-43, Kobayashi). 

Regarding claim 7, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi discloses: wherein obtaining a role- specific data set that 
represents a role further comprises obtaining a role-specific data set that represents a role 
selected from the group consisting of customer, supplier, user, employee and contact (col. 6, 
lines 25-40, Kobayashi). 

Regarding claim 8, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi discloses: further comprising determining whether the 
user has access to the role-specific data set (col. 5, lines 50-60, Kobayashi). 

Regarding claim 9, all the limitations of this claim have been noted in the rejection of 
claim 8 above. In addition, Kobayashi discloses: wherein determining whether the user has 
access comprises filtering user access (user enters name and password) , based on a 
characteristic of the user , to a plurality of role-specific data sets including said role-specific 
data set (col. 5, lines 50-55, Kobayashi).. 
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Regarding claim 1 1, all the limitations of this claim have been noted in the rejection of 
claim 9 above. In addition, Kobayashi discloses: wherein filtering based on a characteristic 
comprises filtering based on the identity of the user (enter user name and password, col. 5, lines 
50-55, Kobayashi). 

Regarding claim 15, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi discloses: further comprising creating an association 
between the role-specific data set and one or more organizational divisions within an enterprise 
(col. 6, lines 20-40, Kobayashi). 

Regarding claim 16, all the limitations of this claim have been noted in the rejection of 
claim 15 above. In addition, Kobayashi discloses: further comprising determining, based at 
least in part on the association, whether the user has access to the role-specific data set (col. 5, 
lines 50-55, Kobayashi). 

Regarding claim 17, all the limitations of this claim have been noted in the rejection of 
claim 16 above. In addition, Kobayashi discloses: wherein determining whether the user has 
access comprises filtering user access, based at least in part on the association, to a plurality of 
role-specific data sets that includes said role-specific data set (col. 5, lines 50-55, Kobayashi). 
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Regarding claim 19, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi discloses: wherein obtaining a core data set that 
represents a constituent further comprises obtaining a core data set that represents an internal 
organization constituent (section manager, staff, personnel, employee, col. 6, lines 35-41, 
Kobayashi). 

Regarding claim 21, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi/ discloses: wherein obtaining a core data set that 
represents a constituent further comprises obtaining a core data set that represents a constituent 
that is an individual person (col. 5, lines 50-55, Kobayashi). 

Regarding claim 24, Kobayashi discloses: A computer-implemented method for 
distributing access rights, comprising: receiving a set of log-in information (enter user name and 
password (col. 5, lines 50-55, Kobayashi); 

identifying, based on the login information, a contact record (employee information file, 
5, lines 50-55, Kobayashi); 

identifying an association between an organization record and the contact record (col. 1, 
lines 60-65, Kobayashi); and 

wherein the organization record contains a collection of information related to an 
organization (collection of information as record include department, personnel department, 
general affairs department, sales department... col. 4, lines 48-67, Kobayashi); 

selectively providing access based at least in part on the association (col. 6, lines 25-40, 
Kobayashi). 
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Regarding claim 25, all the limitations of this claim have been noted in the rejection of 
claim 24 above. In addition, Kobayashi discloses: wherein identifying an association comprises 
identifying an employment association between an individual affiliated with the contact record 
(employee information file) and an employer affiliated with the organization record (col. 5, , 
lines 50-65, Kobayashi). 

Regarding claim 26, all the limitations of this claim have been noted in the rejection of 
claim 25 above. In addition, Kobayashi discloses: wherein selectively providing access further 
comprises providing access to the organization record when the association is an indication that 
the individual is employed by the employer (col. 5, lines 50-55, Kobayashi). 

Claim Rejections - 35 USC § 103 

The following is a quotation of 35 U.S.C. 103(a) which forms the basis for all 
obviousness rejections set forth in this Office action: 

(a) A patent may not be obtained though the invention is not identically disclosed or described as set 
forth in section 102 of this title, if the differences between the subject matter sought to be patented and 
the prior art are such that the subject matter as a whole would have been obvious at the time the 
invention was made to a person having ordinary skill in the art to which said subject matter pertains. 
Patentability shall not be negatived by the manner in which the invention was made. 

Claims 10, 12-14, 18, 20, 22, 23, 27-35 are rejected under 35 U.S.C. 
103(a) as being unpatentable over Kobayashi et al. (US 6275825). (hereafter Kobayashi) 
in view of Win et al. (US 6453353) (Win). 
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Regarding claims 10, and 18, all the limitations of these claims have been noted in the 
rejection of claims 9 and 17, above, respectively. However, Kobayashi didn't disclose: wherein 
filtering user access comprises filtering user access without requiring the user to log-in more 
than once per session of use. On the other hand, Win disclose: wherein filtering user access 
comprises filtering user access without requiring the user to log-in more than once per session 
of use (system provides a mechanism of single secure log in to Web resources, col. 5, lines 66 
to col. 6, lines 9, Win). Thus, at the time invention was made, it would have been 
obvious to a person of ordinary skill in the art to include wherein filtering user access 
comprises filtering user access without requiring the user to log-in more than once per session 
of use in the system of Kobayashi as taught by Win. The motivation being to enable the 
system provides a mechanism of single secure login to web resources. 

Regarding claim 12, all the limitations of this claim have been noted in the rejection of 
claim 9 above. In addition, Kobayashi/Win discloses: wherein filtering based on a 
characteristic comprises filtering based on a role assumed by the user (adding a role to a 
resource can give or take away access to that resource form all users with that role, col. 5, lines 
60-62, Win). 

Regarding claim 13, all the limitations of this claim have been noted in the rejection of 
claim 9 above. In addition, Kobayashi/Win discloses: wherein filtering based on a 
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characteristic comprises filtering based on at least one security rule set by a system 
administrator (col. 7, lines 45-57 and col. 8, lines 47-63, Win). 

Regarding claim 14, all the limitations of this claim have been noted in the rejection of 
claim 9 above. In addition, Kobayashi/Win discloses: wherein filtering base on a characteristic 
comprises filtering based on an agency relationship between the user and an organization (col. 
5, lines 11-53, Win). 

Regarding claim 20, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi/Win discloses: wherein obtaining a core data set that 
represents a constituent further comprises obtaining a core data set that represents an external 
organization constituent (contractors, customers , supplier, col. 5, lines 21-33, Win). 

Regarding claim 22, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi/Win discloses: wherein obtaining a core data set that 
represents a constituent further comprises obtaining a core data set having any one of a plurality 
of specialized formats (data entry forms, col. 14, lines 2-43, Win). The motivation being to 
provide the data entry form that accepts information defining a role and the administrator may 
complete and submit the data entry form for each resource to be defined in the system and 
protected by the system. 

Regarding claim 23, all the limitations of this claim have been noted in the rejection of 
claim 1 above. In addition, Kobayashi/Win discloses: wherein obtaining a role-specific data set 
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that represents a role assumed by the constituent comprises obtaining a role-specific data set 
having a format that is customized to the role assumed by the constituent (data entry form that 
accepts information defining a role by a role identifier value, a role name, an associated 
functional group value and a description, col. 14, lines 2-43, Win). 

Regarding claim 27, all the limitations of this claim have been noted in the rejection of 
claim 26 above. In addition, Kobayashi/Win discloses: wherein selectively providing access 
further comprises providing access to role-specific records related to the organization record 
when the association is an indication that the individual is employed by the employer (col. 5, 
lines 8-53, Win). 

Regarding claim 28, all the limitations of this claim have been noted in the rejection of 
claim 27 above. In addition, Kobayashi/Win discloses: wherein providing access to role- 
specific records comprises selectively providing access to role-specific records based at least in 
part on a plurality of access security rules (col. 7, lines 45-57 and col. 8, lines 47-63, Win). 

Regarding claim 29, all the limitations of this claim have been noted in the rejection of 
claim 28 above. In addition, Kobayashi/Win discloses: wherein selectively providing access to 
role-specific records based at least in part on a plurality of access security rules comprises 
selectively providing access to role-specific records based at least in part on a plurality of access 
security rules selectively configured by a system administrator (col. 7, lines 45-67, Win). 
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Regarding claim 30, all the limitations of this claim have been noted in the rejection of 
claim 28 above. In addition, Kobayashi/Win discloses: wherein selectively providing access to 
role-specific records based at least in part on a plurality of access security rules comprises 
selectively providing access based at least in part on a plurality of access security rules that 
distribute access rights based on an identity characteristic of the individual (col. 8, lines 35-63, 
Win). 

Regarding claim 31, all the limitations of this claim have been noted in the rejection of 
claim 28 above. In addition, Kobayashi/Win discloses: wherein selectively providing access to 
role-specific records based at least in part on a plurality of access security rules comprises 
selectively providing access based at least in part on a plurality of access security rules that 
distribute access rights based on a role assumed by the individual (col. 8, lines 35-63, Win). 

Regarding claim 32, Kobayashi discloses: A system distributing access rights, the system 
comprising: 

a data management component for receiving data and distributing the data into a 
plurality of constituent (users) and role-specific records (user access right management manages 
logging id, item access right group code and record access right group code in units of users col. 
5, lines 24-55, Kobayashi); 

a constituent-role association component for maintaining a record of relationships 
between constituent and role-specific records (col. 5, lines 50-55, Kobayashi); and 

a security subsystem for distributing access rights based at least in part on the record of 
relationships (col. 5, lines 40-55, Kobayashi) . 
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However, Win didn't discloses: wherein the data includes information gathered from an 
interaction with a constituent acting in a first capacity, as well as information gathered from the 
subsequent interaction with the constituent acting in a capacity different than the first(role may 
reflect a relationship of a user to the organization,. On the other hand, Win discloses: wherein 
the data includes information gathered from an interaction with a constituent acting in a first 
capacity, as well as information gathered from the subsequent interaction with the constituent 
acting in a capacity different than the first(role may reflect a relationship of a user to the 
organization (col. 13, lines 54-67, Win). The motivation being to enable the system to prove 
the roles for each user and developed capacities in which a person might act when they access 
the resources and their functional group, department or organization unit. 

Regarding claim 33, all the limitations of this claim have been noted in the rejection of 
claim 32 above. In addition, Kobayashi/Win discloses: wherein the security subsystem is 
further configured to distribute access rights based at least in part on a plurality of access 
security rules (col. 16, lines 3-28, Win). 

Regarding claim 34, all the limitations of this claim have been noted in the rejection of 
claim 33 above. In addition, Kobayashi/Win discloses: wherein the access security rules are 
selectively established by a system administrator (col. 17, lines 5-37, Win). 

Regarding claim 35, all the limitations of this claim have been noted in the rejection of 
claim 33 above. In addition, Kobayashi/Win discloses: wherein: the record of relationships 
includes a record of employer-employee relationships (col. 16, lines 3-58, Win); and 
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the security subsystem is further configured to distribute access rights based at least in 
part on the record of employer-employee relationships(col. 16, lines 63 to col. 17, lines 27, 
Win). 

Conclusion 

THIS ACTION IS MADE FINAL. Applicant is reminded of the extension of time 
policy as set forth in 37 CFR 1.136(a). 

A shortened statutory period for reply to this final action is set to expire THREE 
MONTHS from the mailing date of this action. In the event a first reply is filed within 
TWO MONTHS of the mailing date of this final action and the advisory action is not 
mailed until after the end of the THREE-MONTH shortened statutory period, then the 
shortened statutory period will expire on the date the advisory action is mailed, and any 
extension fee pursuant to 37 CFR 1 .136(a) will be calculated from the mailing date of 
the advisory action. In no event, however, will the statutory period for reply expire later 
than SIX MONTHS from the mailing date of this final action. 

Contact information 

Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Cindy Nguyen whose telephone number is 571-272- 
4025. The examiner can normally be reached on 8:30-5:00. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Apu A. Mofiz can be reached on 571-272-4080. The fax phone number for 
the organization where this application or proceeding is assigned is 571-273-8300. 



Application/Control Number: 10/781,600 
Art Unit: 2161 



Page 14 



Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status information for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). If you would like assistance from a 
USPTO Customer Service Representative or access to the automated information 
system, call 800-786-9199 (IN USA OR CANADA) or 571-272-1000. 
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